24,000 EXPOSED SERVERS LEAK PASSWORD HASHES VIA 20-YEAR-OLD BMC FLAW
■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE
Over 24,000 internet-exposed servers are leaking authentication password hashes through a two-decade-old vulnerability in their Baseboard Management Controller (BMC) interfaces. The flaw allows attackers to extract credentials remotely without authentication.
■ MORE FROM THE SECURITY DESK
A security researcher has developed an algorithm that generates computer-generated patterns capable of evading detection by surveillance cameras. The technique can hide people, faces, and vehicles from AI-powered monitoring systems.
Scammers are enrolling fake students at US community colleges, using artificial intelligence to complete coursework, and collecting financial aid payouts. The scheme exploits gaps in enrollment verification and assignment monitoring.
The Head Mare hacktivist group has compromised TrueConf video conferencing servers and replaced legitimate client installers with trojaned versions containing backdoors.
OpenAI inadvertently launched a denial-of-service attack against Hugging Face, the popular machine learning platform. The incident has prompted questions about AI infrastructure security and unintended consequences of large-scale operations.